Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The (1) cfmailfilter and (2) cfcron.in files for cfengine 1.6.5 allow local users to overwrite arbitrary files via a symlink attack on temporary files, a different vulnerability than CVE-2005-2960.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
GNU CFEngine 不安全临时文件创建漏洞
Vulnerability Description
cfengine(配置引擎)是一种UNIX 管理工具,其目的是使简单的管理的任务自动化,使困难的任务变得较容易。 cfengine 1.6.5的(1)cfmailfilter和(2)cfcron.in文件可以使本地用户借助临时文件上的symlink攻击,改写任意文件。
CVSS Information
N/A
Vulnerability Type
N/A